Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade ArcSearch on iOS to version 1.45.2 or newer.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 21 Dec 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple ios The Browser Company The Browser Company arc |
|
| Vendors & Products |
Apple
Apple ios The Browser Company The Browser Company arc |
Fri, 19 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Dec 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ArcSearch for iOS versions prior to 1.45.2 could display a different domain in the address bar than the content being shown after an iframe-triggered URI-scheme navigation, increasing spoofing risk. | |
| Title | Address bar spoofing risk in Arc Search on iOS | |
| Weaknesses | CWE-1021 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: BCNY
Published:
Updated: 2025-12-19T16:50:33.125Z
Reserved: 2025-12-16T23:26:11.126Z
Link: CVE-2025-14812
Updated: 2025-12-19T16:50:23.427Z
Status : Deferred
Published: 2025-12-19T17:15:50.957
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-14812
No data.
OpenCVE Enrichment
Updated: 2025-12-21T21:13:09Z